Threat Description

MyDoom.AI

Details

Aliases:MyDoom.AI, I-Worm.Mydoom.AE
Category:Malware
Type:Email-Worm
Platform:W32

Summary



A new variant of MyDoom worm was found on January 15th, 2005.



Removal


Automatic action

Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.

More

You may wish to refer to the Support Community for further assistance. You may also refer to General Removal Instructions for a general guide on alternative disinfection actions.



Technical Details



This variant sends variable emails with EXE/SCR/PIF/ZIP attachments. Some mails contain sexually explicit images and claim that the attachment contains passwords for adult websites.

The body text of infected e-mails varies...for example:

  • The message contains Unicode characters and has been sent as a binary attachment.
  • Mail transaction failed. Partial message is available.
  • The message cannot be represented in 7-bit ASCII encoding and has been sent as a binary attachment





SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

Learn More